Security Advisory

CVE-2025-13653

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-01 18:02:00
Last updated 2025-12-01 18:33:42
Assigner floragunn
State PUBLISHED

Description

In Search Guard FLX versions from 3.1.0 up to 4.0.0 with enterprise modules being disabled, there exists an issue which allows authenticated users to use specially crafted requests to read documents from data streams without having the respective privileges.